Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A Privilege Escalation issue in the inter-process communication procedure from GOG Galaxy (Beta) 2.0.67.2 through v2.0.71.2 allows authentictaed users to change the DACL of arbitrary system directories to include Everyone full control permissions by modifying the FixDirectoryPrivileges instruction parameters sent from GalaxyClient.exe to GalaxyClientService.exe.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
GOG Galaxy 安全漏洞
Vulnerability Description
GOG Galaxy是波兰GOG公司的一款游戏客户端程序。该程序用于安装、启动和更新游戏。 GOG Galaxy 2.0.67.2版本至v2.0.71.2版本存在安全漏洞,该漏洞源于存在权限升级问题,允许经过身份验证的用户通过修改发送的指令参数来更改任意系统目录。
CVSS Information
N/A
Vulnerability Type
N/A